Mygardyn

Cloud Api

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.3%
  • Veröffentlicht 03.04.2026 20:23:20
  • Zuletzt bearbeitet 24.07.2026 22:10:00

A specific endpoint allows authenticated users to pivot to other user profiles by modifying the id number in the API call.

  • EPSS 0.44%
  • Veröffentlicht 03.04.2026 20:20:57
  • Zuletzt bearbeitet 24.07.2026 22:10:00

A specific endpoint exposes all user account information for registered Gardyn users without requiring authentication.

  • EPSS 0.38%
  • Veröffentlicht 03.04.2026 20:18:05
  • Zuletzt bearbeitet 24.07.2026 22:10:00

A specific administrative endpoint notifications is accessible without proper authentication.

  • EPSS 0.49%
  • Veröffentlicht 03.04.2026 20:15:45
  • Zuletzt bearbeitet 24.07.2026 22:10:00

A specific administrative endpoint is accessible without proper authentication, exposing device management functions.

  • EPSS 0.32%
  • Veröffentlicht 03.04.2026 20:11:56
  • Zuletzt bearbeitet 24.07.2026 22:10:00

Development and test API endpoints are present that mirror production functionality.